ZeroHour

CVE-2023-48121

CVSS 3.1
5.3 medium
EPSS
<1%p55
Published
()
Modified
Description

An authentication bypass vulnerability in the Direct Connection Module in Ezviz CS-C6N-xxx prior to v5.3.x build 20230401, Ezviz CS-CV310-xxx prior to v5.3.x build 20230401, Ezviz CS-C6CN-xxx prior to v5.3.x build 20230401, Ezviz CS-C3N-xxx prior to v5.3.x build 20230401 allows remote attackers to obtain sensitive information by sending crafted messages to the affected devices.

Vendors
ezviz
Products
cs-c6n-a0-1c2wfr firmware, cs-cv310-a0-1c2wfr firmware, cs-c6cn-a0-3h2wfr firmware, cs-c3n-a0-3h2wfrl firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.